´ó×ÚQNAP NAS×°±¸Óû§³ÆÆäÔâµ½eCh0raixÀÕË÷¹¥»÷

Ðû²¼Ê±¼ä 2021-12-29

´ó×ÚQNAP NAS×°±¸Óû§³ÆÆäÔâµ½eCh0raixÀÕË÷¹¥»÷


´ó×ÚQNAP NAS×°±¸Óû§³ÆÆäÔâµ½eCh0raixÀÕË÷¹¥»÷.png


¾ÝýÌåÓÚ12ÔÂ27ÈÕ±¨µÀ £¬´ó×ÚQNAPÍøÂ總¼Ó´æ´¢×°±¸(NAS)µÄÓû§±¨¸æÆäϵͳÔâµ½ÀÕË÷Èí¼þeCh0raix£¨Ò²³ÆQNAPCrypt£©µÄ¹¥»÷ ¡£ID ransomware serviceÊý¾ÝÏÔʾ £¬Óû§±¨¸æµÄ¹¥»÷ÊýÄ¿´Ó12ÔÂ19ÈÕ×îÏÈÔöÌí £¬²¢ÔÚ12ÔÂ26ÈÕÇ÷ÓÚÆ½»º ¡£ÏÖÔÚÉв»ÇåÎú×î³õµÄѬȾǰÑÔ £¬²¿·ÖÓû§ÌåÏÖÆäδӦÓÃ׼ȷµÄÇå¾²Õ½ÂÔ £¬ÁíÒ»²¿·ÖÓû§Éù³Æ¹¥»÷ÓëQNAP Photo StationÖеÄÎó²îÓйØ ¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/qnap-nas-devices-hit-in-surge-of-ech0raix-ransomware-attacks/


LastPassÓû§Ô⵽ƾ֤Ìî³ä¹¥»÷µ¼ÖÂÖ÷ÃÜԿй¶


LastPassÓû§Ô⵽ƾ֤Ìî³ä¹¥»÷µ¼ÖÂÖ÷ÃÜԿй¶.png


12ÔÂ28ÈÕ £¬ÃÜÂë¹ÜÀíÓ¦ÓÃLastPassÌåÏÖ¹¥»÷Õß¶ÔÆäÓû§Ìᳫײ¿â¹¥»÷ £¬²¢ÊÔͼ»á¼ûËûÃǵÄÔÆÃÜÂë¿â ¡£¿ËÈÕ £¬´ó×ÚÓû§ÊÕµ½À´×Ըù«Ë¾µÄÇå¾²¾¯±¨ £¬³Æ¡°ÓÐÈËʹÓÃÄúµÄÖ÷ÃÜÂëʵÑé´ÓÎÒÃÇÎÞ·¨Ê¶±ðµÄ×°±¸»òλÖõǼÄúµÄÕÊ»§¡± ¡£LastPass³Æ´Ë´ÎÔ˶¯×îÏÈÓÚ±¾ÖÜÒ» £¬ËüÒѾ­×èÖ¹ÁË´ó×ÚÀ´×ÔÍâ¹úIPµØÖ·£¨´ó²¿·ÖλÓÚ°ÍÎ÷£©Ê¹ÓÃ׼ȷÃÜÂëµÄµÇ¼ʵÑé ¡£


Ô­ÎÄÁ´½Ó£º

https://therecord.media/lastpass-confirms-credential-stuffing-attack-against-some-of-its-users/


Ê©ÄÍµÂµçÆøÐÞ¸´ÆäEVlinkµç¶¯Æû³µ³äµçÕ¾Öжà¸öÎó²î


Ê©ÄÍµÂµçÆøÐÞ¸´ÆäEVlinkµç¶¯Æû³µ³äµçÕ¾Öжà¸öÎó²î.jpg


¾ÝýÌåÔÚ12ÔÂ27ÈÕ³Æ £¬Ê©ÄÍµÂµçÆøÒÑÐÞ¸´EVlinkµç¶¯Æû³µ³äµçÕ¾Öжà¸öÑÏÖØµÄÎó²î ¡£¸Ã²¹¶¡Ðû²¼ÓÚ12ÔÂ14ÈÕ £¬Ó°ÏìÁËVlink City¡¢ParkingºÍSmart WallboxµÈ×°±¸ ¡£´Ë´ÎÐÞ¸´µÄ×îΪÑÏÖØµÄÎó²îΪ·þÎñÆ÷¶ËÇëÇóαÔìÎó²î£¨CVE-2021-22821£© £¬CVSSÆÀ·ÖΪ9.3£»Æä´ÎΪ¿çÕ¾¾ç±¾Îó²î£¨CVE-2021-22822£©µÈ ¡£¸Ã¹«Ë¾³ÆÕâЩÎó²î¿ÉÄܵ¼Ö¾ܾø·þÎñ¹¥»÷ £¬»òÓû§ÉèÖúÍÕÊ»§±»¸Ä¶¯ºÍй¶ £¬Òò´Ë±Þ²ßÓû§Á¬Ã¦×°ÖÃ×îв¹¶¡ ¡£


Ô­ÎÄÁ´½Ó£º

https://www.securityweek.com/new-flaws-expose-evlink-electric-vehicle-charging-stations-remote-hacking


Windows 11±¬³öÐÂBug £¬²¿·ÖHDRÏÔʾÆ÷³ÊÉ«·ºÆðÎÊÌâ


Windows 11±¬³öÐÂBug£¬²¿·ÖHDRÏÔʾÆ÷³ÊÉ«·ºÆðÎÊÌâ.png


12ÔÂ27ÈÕ £¬MicrosoftÒÑÈ·ÈÏÓ°ÏìWindows 11 21H2×°±¸µÄÐÂBug £¬×ÝÈ»ÓÃWin32 APIÔÚ²¿·Ö¸ß¶¯Ì¬¹æÄ£(HDR)ÏÔʾÆ÷ÉϳÊÉ«µÄÓ¦Ó÷ºÆðÎÊÌâ ¡£MicrosoftÚ¹Ê͵À £¬Ä³Ð©Í¼Ïñ±à¼­Ó¦ÓÃÎÞ·¨ÔÚHDRÏÔʾÆ÷ÉÏ׼ȷ³ÊÉ« £¬ÌØÊâÊǰ×É«¾­³£»áÏÔʾ³ÉÁÁ»ÆÉ«»òÆäËüÑÕÉ« ¡£µ±Ä³Ð©ÏÔÉ«Win32 API·µ»ØÒâÍâÐÅÏ¢»ò¹ýʧʱ¾Í»á·ºÆð´ËÎÊÌâ £¬²¢·ÇËùÓÐÉèÖÃÎļþ¹ÜÀí³ÌÐò¶¼ÊÜ´ËÎÊÌâÓ°Ïì ¡£MicrosoftÒÑÌṩ¿É½ÓÄɵÄÐÞ¸´²½·¥ £¬Ô¤¼ÆÔÚ1ÔÂÏÂÑ®ÐÞ¸´¸ÃÎÊÌâ ¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/microsoft/windows-11-bug-causes-color-rendering-issues-on-hdr-displays/


°µÍøÊг¡ToRReZÔÝÍ£ÔËÓª²¢³Æ¿ÉÄÜÔÚÉÔºó½×¶Î»Ø¹é


°µÍøÊг¡ToRReZÔÝÍ£ÔËÓª²¢³Æ¿ÉÄÜÔÚÉÔºó½×¶Î»Ø¹é.png


ýÌå12ÔÂ27ÈÕ³Æ £¬°µÍøÊг¡ToRReZÐû²¼ÔÝÍ£ÔËÓª ¡£Torrez Market½¨ÉèÓÚ2020Äê4Ô £¬ÊÇΨһ½ÓÊÜBitcoin¡¢Monero¡¢ZcashºÍLitecoinµÄ°µÍøÊг¡ ¡£¸ÃÍøÕ¾µÄ¹ÜÀíÔ±mrblondeÉù³ÆÕâÊÇËûÃÇ×Ô¼º¾öÒéµÄЧ¹û £¬²¢Ú¹ÊÍËûÃÇ¿ÉÄÜ»áÔÚÉÔºó½×¶Î»Ø¹é ¡£×Ô12ÔÂ17ÈÕÆð £¬¸ÃÍøÕ¾ÒÑÎÞ·¨×¢²áÐÂÕÊ»§ £¬Ö®ºó¹ÜÀíÔ±Ô¤ÁôÁ½µ½ÈýÖܵÄʱ¼äÆÚ´ýËùÓÐÓû§Íê³ÉÉúÒâ ¡£


Ô­ÎÄÁ´½Ó£º

https://securityaffairs.co/wordpress/126052/cyber-crime/torrez-marketplace-shut-down.html    


Cisco TalosÐû²¼2021Äê¶ÈÍøÂç¹¥»÷Ô˶¯µÄ»ØÊ×±¨¸æ


Cisco TalosÐû²¼2021Äê¶ÈÍøÂç¹¥»÷Ô˶¯µÄ»ØÊ×±¨¸æ.png


12ÔÂ27ÈÕ £¬Cisco TalosÐû²¼2021Äê¶ÈÍøÂç¹¥»÷Ô˶¯µÄ»ØÊ×±¨¸æ ¡£¸Ã±¨¸æÖ¼ÔÚ»ØÊ×½ñÄ걬·¢µÄÖØ´óÇå¾²ÊÂÎñ £¬ÆäÖаüÀ¨1Ô·ݴó¹æÄ£SolarWinds¹©Ó¦Á´¹¥»÷£»3Ô·ÝProxyLogonÎó²îºÍHAFNIUM ÍŻﷺÆð£»5Ô·ÝʯÓ͹ܵÀColonial PipelineÔâµ½¹¥»÷£»7Ô·ÝKaseya¹©Ó¦Á´¹¥»÷£»12Ô·ÝLog4jÎó²î·ºÆðµÈÊÂÎñ ¡£±¨¸æÕ¹Íû £¬ÔÚ2022Äê £¬´óÐ͹¥»÷Ô˶¯ºÍÀÕË÷Èí¼þÈÔ½«³ÊÉÏÉýÇ÷ÊÆ ¡£


Ô­ÎÄÁ´½Ó£º

https://blog.talosintelligence.com/2021/12/2021-looking-back-on-year-in-malware.html